Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Urulu "connectionId" SQL Injection Vulnerability

BugsAlert Home > Urulu "connectionId" SQL Injection Vulnerability
 
 

Daniel Roethlisberger has reported a vulnerability in Urulu, which can be exploited by malicious people to conduct SQL injection attacks.


Be sure to check if your system is missing security updates or have insecure applications installed:
http://secunia.com/software_inspector/

Feature Overview - The Secunia Software Inspector:
* Detects insecure versions of applications installed
* Verifies that all Microsoft patches are applied
* Assists you in updating your system and applications
* Runs through your browser. No installation or download is required.




Original Source: http://secunia.com/advisories/29162/

Learn more about Urulu "connectionId" SQL Injection Vulnerability
 
Tags: urulu connectionid sql injection vulnerability

Related Items

      CVE-2008-2059 (Adaptive Security Appliance, pix_security_appliance)

      Brief: Policy group warns over travel card

      CVE-2008-5045 (ftp_now)

      Vuln: VMware Virtual Disk Mount Service Reconfig.DLL Denial Of Service Vulnerability

      Mark Rasch: Click Crime

      CVE-2008-3558 (webex_meeting_manager)

      Debian: New ikiwiki packages fix cross-site request forgery

 

Pixel